Researchers from ESET believes that the Sednit group unleashed new components that target victims in various countries in the Middle East and Central Asia in 2015. Malware is a custom backdoor on the targeted machine that indented to open backdoor on targeted machine to gain remote access. The payload contains two files, in which, the first file indicate the malicious executable and the second file holding the weaponized PDF file. Once the victims click the file, the binary will be executed, and it promotes the user to enter the password; eventually, PDF will open after the validation attempt. Later threat actors quickly remove it once they complete the task.”]

